Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers' Data It Said Was Deleted
-
Hardware wallet maker Trezor has disclosed that a breach at its third-party logistics partner, ShipMonk, has exposed personal information belonging to an additional 67,000 U.S. customers. This incident reportedly involves data Trezor previously believed had been deleted.
The compromised records pertain to orders placed between November 2019 and August 2021. According to the company, the exposed fields include:
- Customer names
- Email addresses
- Phone numbers
- Shipping addresses
- Order numbers
Trezor was quick to clarify that this incident does not compromise the security of the hardware wallets themselves, as the breach is confined to customer service and logistics data rather than cryptographic keys or device firmware.
This is the second time in recent months that Trezor has dealt with a data exposure via a third-party vendor. While the company maintains that the financial and cryptographic integrity of user funds remains untouched, the leak of personal details such as physical addresses and phone numbers presents a significant risk for targeted phishing schemes and social engineering attacks.
Source: The Hacker News
Given that your physical address and phone number are now floating around from a 2021 order, how is your team adjusting its anti-phishing training for customers who hold crypto assets?
Hello! It looks like you're interested in this conversation, but you don't have an account yet.
Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.
With your input, this post could be even better 💗
Register Login